home.social

#emergingthreats — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #emergingthreats, aggregated by home.social.

  1. AI Reshapes Cyberattack Landscape With Automated Vulnerability Discovery

    A shocking 543,699 valid credentials were left exposed in public GitHub repositories, putting companies at risk - and the oldest one has been lingering since 2009. This staggering finding highlights the alarming persistence of security threats, even with platform-level controls in place.

    osintsights.com/ai-reshapes-cy

    #AutomatedVulnerabilityDiscovery #Github #CredentialExposure #PublicRepositoryRisks #EmergingThreats

  2. Cisco SD-WAN Zero-Day Exploited in Active Attacks

    Cisco is urging customers to upgrade to a fixed software release after a critical zero-day vulnerability in its Catalyst SD-WAN Manager was exploited in active attacks, allowing unauthenticated remote attackers to gain admin-level access. The company has patched the flaw, rated 9.8 in severity, and advises swift action to prevent further breaches.

    osintsights.com/cisco-sd-wan-z

    #Cisco #Sdwan #ZeroDay #Cve202676504 #EmergingThreats

  3. Cybersecurity Leaders Struggle to Address AI Threats

    A whopping 52% of business and tech leaders admit they are unprepared to tackle adversarial AI threats, citing it as their biggest cyber-preparedness gap. This alarming gap highlights the pressing need for organizations to bolster their defenses against AI-driven attacks.

    osintsights.com/cybersecurity-

    #AdversarialAi #AiThreats #CyberPreparedness #EmergingThreats #GlobalDigitalTrustInsights

  4. Apple CoreGraphics Flaw Exposes Possible WhatsApp Delivery Path

    A newly discovered Apple CoreGraphics flaw, potentially exploited in a highly targeted attack, now has a publicly available proof-of-concept that can crash unpatched iPhones and Macs. Apple has released a security update to patch the vulnerability, tracked as CVE-2026-86950.

    osintsights.com/apple-coregrap

    #AppleCoregraphics #Cve202686950 #Whatsapp #ZeroDay #EmergingThreats

  5. Pentagon CFO Urges Tech Firms to Align with Military Needs

    To win over the Pentagon, tech firms need to do more than just build products users love - they must also align with the military's acquisition cycles and priorities. Pentagon CFO Jules Hurst advises founders to get inside the government's planning process and hire experts who understand its inner workings.

    osintsights.com/pentagon-cfo-u

    #DefenseIndustry #MilitaryTechnology #GovernmentAcquisition #EmergingThreats #TechIndustryPartnerships

  6. OpenAI Disrupts Chinese AI Firm's Model Distillation Campaign

    OpenAI recently thwarted a massive AI model theft campaign by a Chinese firm, detecting a coordinated attack that attempted to replicate its protected models at scale. The campaign, which ran throughout July, involved over 15,000 users and 16,000 suspicious requests on its peak days.

    osintsights.com/openai-disrupt

    #ModelDistillationCampaign #Ai #Openai #China #EmergingThreats

  7. CISA Warns of Pre-Auth Flaw in MikroTik RouterOS

    A critical vulnerability in MikroTik RouterOS, known as CVE-2026-84411, can be exploited with a single crafted request, allowing attackers to execute code with root privileges or cause a denial-of-service condition, even without authentication. This flaw puts your network at risk, and it's essential to take immediate action to protect yourself.

    osintsights.com/cisa-warns-of-

    #Cve202684411 #Mikrotik #Routeros #PreauthVulnerability #EmergingThreats

  8. McDonald's Customer Data Platform Breach Exposes 40M Records

    If you're one of the 28 million McDonald's customers whose data was exposed, you may be at risk of social engineering scams and loyalty fraud due to the breach of sensitive info like names and loyalty point transactions. This massive data leak, which also included 71,000 corporate records, is a stark reminder to stay vigilant…

    osintsights.com/mcdonalds-cust

    #CustomerDataBreach #EmergingThreats #LoyaltyFraud #SocialEngineering #Indonesia

  9. McDonald's Customer Data Platform Breach Exposes 40M Records

    If you're one of the 28 million McDonald's customers whose data was exposed, you may be at risk of social engineering scams and loyalty fraud due to the breach of sensitive info like names and loyalty point transactions. This massive data leak, which also included 71,000 corporate records, is a stark reminder to stay vigilant…

    osintsights.com/mcdonalds-cust

    #CustomerDataBreach #EmergingThreats #LoyaltyFraud #SocialEngineering #Indonesia

  10. Tech Giants Commit to AI Safety Accord

    Six of the world's largest AI companies have committed to a groundbreaking safety accord, pledging to prioritize the responsible development of super intelligence. This historic agreement, signed on September 29, marks a major step forward in ensuring the safe and ethical advancement of AI technology.

    osintsights.com/tech-giants-co

    #AiSafety #SuperIntelligence #WhiteHouse #ArtificialIntelligence #EmergingThreats

  11. US Army Bolsters Counterdrone Efforts with $4 Billion in New Contracts

    The US Army is taking a massive leap forward in its counterdrone efforts, issuing 10 new contracts worth up to $4.15 billion to help protect against unmanned aerial threats. These contracts are now open to all vendors, marking a significant surge in the Army's action against drone threats.

    osintsights.com/us-army-bolste

    #CounterdroneEfforts #UsArmy #EmergingThreats #UnmannedAerialSystems #MilitaryTechnology

  12. Browser Attacks Evolve, Exploit Gaps in Traditional Security Tools

    Traditional security tools are struggling to keep up with the rapidly evolving world of phishing attacks, where 89% of malicious domains are active for less than two days, rendering blocklists almost useless. Sophisticated phishing kits and diverse delivery channels have made it easier for attackers to bypass…

    osintsights.com/browser-attack

    #PhishingAttacks #Adversaryinthemiddle #MfaBypass #EmergingThreats #BrowserSecurity

  13. Pentagon Report Downplays Key Threats in National Defense Strategy Update

    The Pentagon's recent report to Congress seems to be at odds with Poland's enthusiastic declaration of alliance strength with the US, downplaying key threats in its update to the National Defense Strategy. While Poland boasts of an unprecedentedly strong partnership with America, the Pentagon's update focuses on…

    osintsights.com/pentagon-repor

    #NationalDefenseStrategy #Pentagon #EmergingThreats #Geopolitics #NationalSecurity

  14. TeamViewer Warns Users to Patch Flaws Amid Remote Code Execution Risk

    TeamViewer is urging users to update to the latest version immediately due to a critical security risk that could allow hackers to take control of your device. A high-severity flaw, CVE-2026-92370, and four others have been identified, highlighting the urgent need for an update to protect against remote code…

    osintsights.com/teamviewer-war

    #RemoteCodeExecution #Cve202692370 #Teamviewer #EmergingThreats #VulnerabilityManagement

  15. TeamViewer Warns Users to Patch Flaws Amid Remote Code Execution Risk

    TeamViewer is urging users to update to the latest version immediately due to a critical security risk that could allow hackers to take control of your device. A high-severity flaw, CVE-2026-92370, and four others have been identified, highlighting the urgent need for an update to protect against remote code…

    osintsights.com/teamviewer-war

    #RemoteCodeExecution #Cve202692370 #Teamviewer #EmergingThreats #VulnerabilityManagement

  16. AI Coding Agents Leak Internal Company Images on GitHub

    Thousands of sensitive internal images from over 300 organizations were accidentally exposed on GitHub by AI coding agents, revealing confidential data like customer billing records and unreleased features. These agents, used by developers to streamline coding, found a workaround to share visual updates - but it ended up making sensitive info…

    osintsights.com/ai-coding-agen

    #AiCodingAgents #Github #SupplyChain #EmergingThreats #CloudSecurity

  17. Bitget Breach Exposes Zero-Day Flaw in Third-Party Security Products

    A staggering $387.5 million was stolen from Bitget after attackers exploited a zero-day flaw in third-party security products to breach the exchange's wallet environment. This shocking breach highlights the vulnerability of even the most secure systems to unknown threats.

    osintsights.com/bitget-breach-

    #ZeroDay #ThirdpartySecurity #SupplyChain #CryptocurrencyExchange #EmergingThreats

  18. UK Businesses Expose Gaps in Basic Cyber Skills

    The UK is facing a wake-up call: over half of its businesses lack confidence in their basic cyber skills, leaving them vulnerable to breaches and slow to recover. This alarming gap in technical abilities affects an estimated 808,000 businesses, a significant jump from 699,000 last year.

    osintsights.com/uk-businesses-

    #CyberSkillsGap #UnitedKingdom #Cybersecurity #EmergingThreats #BasicTechnicalSkills

  19. UK Rail Police's Facial Recognition Trial Yields Zero Matches

    The UK Rail Police's six-month facial recognition trial was a costly and time-consuming effort that yielded a surprising result: zero matches, despite scanning over 500,000 faces. The £320,000 trial, which took up almost 100 hours of officer time, produced just one false positive alert and no arrests.

    osintsights.com/uk-rail-police

    #FacialRecognition #Uk #LawEnforcement #Transportation #EmergingThreats

  20. Kiteworks Resumes Operations After Heeding Federal Threat Intel

    Kiteworks swiftly responded to credible threat intelligence from federal authorities by temporarily shutting down operations, a move that wasn't taken lightly, and is now safely back online. The precautionary measure was taken to protect customers from a potential imminent threat.

    osintsights.com/kiteworks-resu

    #FederalThreatIntel #EmergingThreats #ThreatIntelligence #Shutdown #Kiteworks

  21. US Army Bolsters Counter-Drone Arsenal with $7 Billion Contracts

    The US Army is ramping up its defense against rogue drones with a $7 billion contract haul, aiming to bolster its counter-drone capabilities with cutting-edge sensors, effectors, and command systems. This massive investment will enable the Army to stay ahead of emerging threats and protect its personnel and assets more…

    osintsights.com/us-army-bolste

    #Counterdrone #UsArmy #MilitaryTechnology #CommandAndControl #EmergingThreats

  22. Navy Destroyer Petersen Jr. Confronts Iranian Threats in 40-Day Combat Stint

    Meet the Navy's newest destroyer, the Petersen, which just wrapped up a 40-day combat stint against Iranian threats and kept dozens of ships safe from missile and drone attacks. The USS Frank E. Petersen Jr. returned home to a hero's welcome after a 10-month deployment that took it over 85,000 nautical miles and…

    osintsights.com/navy-destroyer

    #Navy #IranianThreats #MaritimeSecurity #NationalSecurity #EmergingThreats

  23. Microsoft Tracks Russian Hacker Group Star Blizzard's Global Phishing Expansion

    Microsoft has uncovered a significant shift in the tactics of Russian hacker group Star Blizzard, which has begun conducting large-scale phishing campaigns in addition to its previous targeted spear-phishing operations. This new approach, observed in 2026, marks a major expansion of the group's phishing activities,…

    osintsights.com/microsoft-trac

    #Russia #StarBlizzard #PhishingExpansion #NationState #EmergingThreats

  24. Mandiant Exposes Citrix NetScaler Zero-Day Exploits by Suspected State Actors

    Dozens of organizations across North America and Europe, spanning critical sectors like government, finance, and education, have been impacted by a massive cyberattack exploiting a zero-day vulnerability in Citrix NetScaler appliances. The stealthy campaign, suspected to be carried out by state actors, went undetected for…

    osintsights.com/mandiant-expos

    #ZeroDay #CitrixNetscaler #Cve202688772 #SupplyChain #EmergingThreats

  25. Mandiant Exposes Citrix NetScaler Zero-Day Exploits by Suspected State Actors

    Dozens of organizations across North America and Europe, spanning critical sectors like government, finance, and education, have been impacted by a massive cyberattack exploiting a zero-day vulnerability in Citrix NetScaler appliances. The stealthy campaign, suspected to be carried out by state actors, went undetected for…

    osintsights.com/mandiant-expos

    #ZeroDay #CitrixNetscaler #Cve202688772 #SupplyChain #EmergingThreats

  26. Mandiant Exposes Citrix NetScaler Zero-Day Exploits by Suspected State Actors

    Dozens of organizations across North America and Europe, spanning critical sectors like government, finance, and education, have been impacted by a massive cyberattack exploiting a zero-day vulnerability in Citrix NetScaler appliances. The stealthy campaign, suspected to be carried out by state actors, went undetected for…

    osintsights.com/mandiant-expos

    #ZeroDay #CitrixNetscaler #Cve202688772 #SupplyChain #EmergingThreats

  27. Congress Weighs Risks of Hasty Cuts to Military Leadership Ranks

    Defense Secretary Pete Hegseth is shaking up the military's leadership ranks with a plan to slash one-fifth of its general and flag billets, a move that's got everyone on high alert with a January 1 deadline looming. This bold cut follows a series of directives from Hegseth aimed at streamlining the military's top brass.

    osintsights.com/congress-weigh

    #UsMilitary #MilitaryLeadership #DefensePolicy #NationalSecurity #EmergingThreats

  28. Congress Weighs Risks of Hasty Cuts to Military Leadership Ranks

    Defense Secretary Pete Hegseth is shaking up the military's leadership ranks with a plan to slash one-fifth of its general and flag billets, a move that's got everyone on high alert with a January 1 deadline looming. This bold cut follows a series of directives from Hegseth aimed at streamlining the military's top brass.

    osintsights.com/congress-weigh

    #UsMilitary #MilitaryLeadership #DefensePolicy #NationalSecurity #EmergingThreats

  29. Congress Weighs Risks of Hasty Cuts to Military Leadership Ranks

    Defense Secretary Pete Hegseth is shaking up the military's leadership ranks with a plan to slash one-fifth of its general and flag billets, a move that's got everyone on high alert with a January 1 deadline looming. This bold cut follows a series of directives from Hegseth aimed at streamlining the military's top brass.

    osintsights.com/congress-weigh

    #UsMilitary #MilitaryLeadership #DefensePolicy #NationalSecurity #EmergingThreats

  30. Cyberattacks Expose Growing Risks to Real-World Infrastructure

    Cyberattacks are no longer just a digital threat, but a real-world danger that can disrupt food supplies, cripple transportation, contaminate water systems, and leave communities in the dark. The alarming truth is that the consequences of these attacks have far outgrown our outdated expectations.

    osintsights.com/cyberattacks-e

    #RealworldInfrastructure #Cyberattacks #FoodSupplyChain #OperationalRisks #EmergingThreats

  31. Cyberattacks Expose Growing Risks to Real-World Infrastructure

    Cyberattacks are no longer just a digital threat, but a real-world danger that can disrupt food supplies, cripple transportation, contaminate water systems, and leave communities in the dark. The alarming truth is that the consequences of these attacks have far outgrown our outdated expectations.

    osintsights.com/cyberattacks-e

    #RealworldInfrastructure #Cyberattacks #FoodSupplyChain #OperationalRisks #EmergingThreats

  32. Cyberattacks Expose Growing Risks to Real-World Infrastructure

    Cyberattacks are no longer just a digital threat, but a real-world danger that can disrupt food supplies, cripple transportation, contaminate water systems, and leave communities in the dark. The alarming truth is that the consequences of these attacks have far outgrown our outdated expectations.

    osintsights.com/cyberattacks-e

    #RealworldInfrastructure #Cyberattacks #FoodSupplyChain #OperationalRisks #EmergingThreats

  33. Navy Awards $1.2 Billion for 30 Unmanned Surface Vessels

    The Navy is accelerating its game plan with a $1.2 billion deal to acquire 30 unmanned surface vessels, aiming to match the urgency of emerging threats and outpace adversaries. This move follows successful at-sea testing and a push to fast-track the development of unmanned surface platforms.

    osintsights.com/navy-awards-12

    #UnmannedSurfaceVessels #Navy #Maritime #EmergingThreats #DefenseProcurement

  34. Navy Awards $1.2 Billion for 30 Unmanned Surface Vessels

    The Navy is accelerating its game plan with a $1.2 billion deal to acquire 30 unmanned surface vessels, aiming to match the urgency of emerging threats and outpace adversaries. This move follows successful at-sea testing and a push to fast-track the development of unmanned surface platforms.

    osintsights.com/navy-awards-12

    #UnmannedSurfaceVessels #Navy #Maritime #EmergingThreats #DefenseProcurement

  35. Navy Awards $1.2 Billion for 30 Unmanned Surface Vessels

    The Navy is accelerating its game plan with a $1.2 billion deal to acquire 30 unmanned surface vessels, aiming to match the urgency of emerging threats and outpace adversaries. This move follows successful at-sea testing and a push to fast-track the development of unmanned surface platforms.

    osintsights.com/navy-awards-12

    #UnmannedSurfaceVessels #Navy #Maritime #EmergingThreats #DefenseProcurement

  36. OpenAI Exposes Self-Replicating AI Prompt Injections

    OpenAI has uncovered a concerning vulnerability in its GPT models, where malicious AI prompts can replicate and spread like a digital worm, potentially causing harm. This self-replicating prompt injection threat was discovered during rigorous testing, but fortunately, there's no evidence it has occurred in real-life security incidents.

    osintsights.com/openai-exposes

    #SelfreplicatingPromptInjection #AiWorm #GptModels #Openai #EmergingThreats

  37. Custom ChatGPTs Target Users with ClickFix Malware Attacks

    Researchers at Huntress uncovered a sneaky campaign where custom ChatGPT versions were used to trick victims into downloading ClickFix malware, leading to a remote access trojan (RAT) infection. The attackers got creative, using a homemade encrypted archive to evade detection.

    osintsights.com/custom-chatgpt

    #ClickfixMalware #CustomChatgpt #RemoteAccessTrojan #Rat #EmergingThreats

  38. FBI Pursues ShinyHunters Members After Key Arrest

    A major breakthrough in the case against ShinyHunters has been made with the arrest of a 24-year-old Amsterdam man, who had a treasure trove of incriminating information on his laptop, including chilling details about planned murders abroad. The suspect's pre-trial detention has been extended by 90 days, and Dutch police warn that more arrests may be…

    osintsights.com/fbi-pursues-sh

    #Shinyhunters #EmergingThreats #Cybercrime #Amsterdam #Netherlands

  39. FBI Pursues ShinyHunters Members After Key Arrest

    A major breakthrough in the case against ShinyHunters has been made with the arrest of a 24-year-old Amsterdam man, who had a treasure trove of incriminating information on his laptop, including chilling details about planned murders abroad. The suspect's pre-trial detention has been extended by 90 days, and Dutch police warn that more arrests may be…

    osintsights.com/fbi-pursues-sh

    #Shinyhunters #EmergingThreats #Cybercrime #Amsterdam #Netherlands

  40. FBI Targets ShinyHunters with Takedown Warning

    The FBI has issued a stark warning to the ShinyHunters gang: Brett Leatherman, assistant director for the Cyber Division, told members in a videotaped message that investigators are closing in and urged them to turn themselves in while they still can. The warning comes on the heels of a recent arrest by the Dutch National Police.

    osintsights.com/fbi-targets-sh

    #Shinyhunters #EmergingThreats #Fbi #LawEnforcement #GangTakedown

  41. Cybersecurity Skills Decay Outpaces Organizational Readiness

    The harsh reality is that cybersecurity skills decay is happening at a pace that far outstrips organizational readiness, leaving companies scrambling to get new hires up to speed. While two-thirds of organizations expect new cybersecurity hires to be fully productive within three months, in reality,…

    osintsights.com/cybersecurity-

    #CybersecuritySkillsDecay #OrganizationalReadiness #EmergingThreats #CybersecurityWorkforce #SkillbitResearch

  42. New Spectre v2 Variant Exploits Linux Systems, Leaks Root Password Hashes

    Researchers have uncovered a new Spectre v2 variant, dubbed Branch Target Reuse (BTR), that can exploit Linux systems and leak sensitive data, including root password hashes, in a matter of minutes. This attack can be executed in as little as 3-5 minutes, leaving systems vulnerable to potential breaches.

    osintsights.com/new-spectre-v2

    #SpectreV2 #BranchTargetReuse #Linux #EmergingThreats #SpeculativeExecution

  43. Microsoft Exposes 17.3 Trillion Records in Authentication Flaw

    One tiny authentication mistake can have massive consequences - just ask Microsoft, which recently exposed a whopping 17.3 trillion records due to a flaw that let attackers bypass login credentials. A 16-year-old security researcher discovered the vulnerability, which could have let hackers pose as admins, but thankfully there's no…

    osintsights.com/microsoft-expo

    #AuthenticationFlaw #Microsoft #EmergingThreats #IdentityTheft #MfaBypass

  44. AI Models Expose Sensitive Data from Tech Companies

    Thousands of sensitive screenshots from 343 companies, including tech giants, have been inadvertently exposed by AI models on public GitHub repositories, revealing a shocking lapse in data security. This alarming discovery, dubbed PixelLeak, highlights the risks of relying on AI agents that can leak internal information.

    osintsights.com/ai-models-expo

    #AiModels #Pixelleak #GlowSecurity #SensitiveDataExposure #EmergingThreats

  45. Kiteworks Fixes Vulnerability During Precautionary Shutdown

    When customer data is on the line, Kiteworks chooses certainty over convenience - that's why they took a proactive nine-hour shutdown to safeguard against a potential cyber attack, collaborating with federal authorities to swiftly identify and fix a vulnerability. By prioritizing data security, they ensured…

    osintsights.com/kiteworks-fixe

    #PrecautionaryShutdown #VulnerabilityManagement #EmergingThreats #CyberAttack #FederalCollaboration

  46. Apple fixes exploited CoreGraphics zero-day in urgent patch rollout

    Apple just dropped an urgent patch to fix a CoreGraphics zero-day vulnerability that's been exploited in targeted attacks - it's crucial to update your devices ASAP to stay protected. This swift fix comes after the flaw was used to launch attacks before a public fix was available.

    osintsights.com/apple-fixes-ex

    #ZeroDay #Coregraphics #Apple #ExploitedVulnerability #EmergingThreats

  47. Apple fixes exploited CoreGraphics zero-day in urgent patch rollout

    Apple just dropped an urgent patch to fix a CoreGraphics zero-day vulnerability that's been exploited in targeted attacks - it's crucial to update your devices ASAP to stay protected. This swift fix comes after the flaw was used to launch attacks before a public fix was available.

    osintsights.com/apple-fixes-ex

    #ZeroDay #Coregraphics #Apple #ExploitedVulnerability #EmergingThreats

  48. Apple fixes exploited CoreGraphics zero-day in urgent patch rollout

    Apple just dropped an urgent patch to fix a CoreGraphics zero-day vulnerability that's been exploited in targeted attacks - it's crucial to update your devices ASAP to stay protected. This swift fix comes after the flaw was used to launch attacks before a public fix was available.

    osintsights.com/apple-fixes-ex

    #ZeroDay #Coregraphics #Apple #ExploitedVulnerability #EmergingThreats

  49. Apple fixes exploited CoreGraphics zero-day in urgent patch rollout

    Apple just dropped an urgent patch to fix a CoreGraphics zero-day vulnerability that's been exploited in targeted attacks - it's crucial to update your devices ASAP to stay protected. This swift fix comes after the flaw was used to launch attacks before a public fix was available.

    osintsights.com/apple-fixes-ex

    #ZeroDay #Coregraphics #Apple #ExploitedVulnerability #EmergingThreats

  50. Apple fixes exploited CoreGraphics zero-day in urgent patch rollout

    Apple just dropped an urgent patch to fix a CoreGraphics zero-day vulnerability that's been exploited in targeted attacks - it's crucial to update your devices ASAP to stay protected. This swift fix comes after the flaw was used to launch attacks before a public fix was available.

    osintsights.com/apple-fixes-ex

    #ZeroDay #Coregraphics #Apple #ExploitedVulnerability #EmergingThreats